APs pinging google dns constantly

Sysad43
Conversationalist

APs pinging google dns constantly

Has anyone else seen this? All of my Merkaki APs constantly ping google dns, which my firewall thought was a threat and shunned it causing some other issues. How do I stop the APs doing this? I ran a packet capture and it does indeed come from the AP via the wired interface.

7 Replies 7
Sysad43
Conversationalist

Seems unneccesary, but Ive excluded google dns from shun to work around it for now. Not ideal.

MerakiHell
Here to help

Did you know they also ping regulary to yahoo and few other providers.. if you block them from doing such it will show on the portal that the devices are offline... bad design.. we have 300+aps and they generatoa tone of rubish trafic...  i imagine the meraki dashboard isnt stable enough to use it for Ping and DNS lookups...

Yes, still annoying 2 years later. Im trying to troubleshoot a firewall problem and meraki pinging google is number one event in syslog.

GIdenJoe
Kind of a big deal
Kind of a big deal

There is a little thing like grep to filter your output.
The devices will always do their uplink tests that is supposed to continue working even if dashboard is down for any reason (maintenance or issue)  And they do have a good track record in that.  So yes AP's, switches will do the pinging.  For the rest they will send telemetry data to dashboard.

Sysad43
Conversationalist

Id rather they didnt do it so often as my firewall treats its as a scanning attack. 40 different devices pinging google every 5 seconds. Our APs do not need such critical metrics.

TBHPTL
A model citizen

Should be easy to filter it then

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels